IBM Applicable countries and regions

The MD5 “SLOTH” vulnerability on TLS 1.2 affects IBM BladeCenter Switches.

CVE(s): CVE-2015-7575

Affected product(s) and affected version(s):

ProductAffected Version
IBM 1/10Gb Uplink Ethernet Switch Module
ibm_fw_bcsw_110gup-6.8.23.0_anyos_noarch
6.8.23.0
IBM 1/10Gb Uplink Ethernet Switch Module
ibm_fw_bcsw_110gup-7.4.13.0_anyos_noarch
7.4.13.0
IBM Virtual Fabric 10Gb Switch Module
ibm_fw_bcsw_24-10g-6.8.23.0_anyos_noarch
6.8.23.0
IBM Virtual Fabric 10Gb Switch Module
ibm_fw_bcsw_24-10g-7.8.9.0_anyos_noarch
7.8.9.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/1OlflHS
X-Force Database: http://ift.tt/1SPYKeQ



from IBM Product Security Incident Response Team http://ift.tt/1Olf3kj